Incorrect Implementation of Authentication Algorithm vulnerability in ABB WebPro SNMP Card PowerValue, ABB WebPro SNMP Card PowerValue UL.This issue affects WebPro SNMP Card PowerValue: through 1.1.8.K; WebPro SNMP Card PowerValue UL: through 1.1.8.K.
History

Thu, 08 Jan 2026 10:00:00 +0000

Type Values Removed Values Added
First Time appeared Abb
Abb webpro Snmp Card Powervalue
Abb webpro Snmp Card Powervalue Ul
Vendors & Products Abb
Abb webpro Snmp Card Powervalue
Abb webpro Snmp Card Powervalue Ul

Wed, 07 Jan 2026 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 07 Jan 2026 17:15:00 +0000

Type Values Removed Values Added
Description Incorrect Implementation of Authentication Algorithm vulnerability in ABB WebPro SNMP Card PowerValue, ABB WebPro SNMP Card PowerValue UL.This issue affects WebPro SNMP Card PowerValue: through 1.1.8.K; WebPro SNMP Card PowerValue UL: through 1.1.8.K.
Title Authentication bypass by brute forcing Authentication Headers
Weaknesses CWE-303
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H'}

cvssV4_0

{'score': 8.4, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:H/SC:H/SI:H/SA:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: ABB

Published:

Updated: 2026-01-07T17:22:42.902Z

Reserved: 2025-05-14T06:02:14.592Z

Link: CVE-2025-4676

cve-icon Vulnrichment

Updated: 2026-01-07T17:22:35.429Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-01-07T17:16:00.170

Modified: 2026-01-08T18:08:54.147

Link: CVE-2025-4676

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-01-08T09:48:28Z